Skip to content
CVE-2026

CVE-2026

Api.Msrc.Microsoft February 10, 2026

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code over a network.

Extracted Entities